CVE-2006-7247
Joomla com_weblinks < 1.0.9 - SQL Injection via Title Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-7247. PoCs published by rgod.
AI-analyzed exploit summary This exploit leverages a blind SQL injection vulnerability in Joomla's Weblinks component to extract admin credentials via time-based benchmark techniques. It authenticates with a valid user account before exploiting the vulnerability.
Description
SQL injection vulnerability in the Weblinks (com_weblinks) component for Joomla! and Mambo 1.0.9 and earlier allows remote attackers to execute arbitrary SQL commands via the title parameter.
Exploits (1)
This exploit leverages a blind SQL injection vulnerability in Joomla's Weblinks component to extract admin credentials via time-based benchmark techniques. It authenticates with a valid user account before exploiting the vulnerability.